Talos Takes Ep. #76: What is Kimsuky phishing around for?

By Jon Munshaw.

The latest episode of Talos Takes is available now. Download this episode and subscribe to Talos Takes using the buttons below, or visit the Talos Takes page.

Blog posts aren't just for sharing your darkest secrets from high school anymore. They're also used by attackers to spread malware and steal international secrets.

On this week's episode of Talos Takes, Asheer Malhotra, part of the research team who recently discovered a campaign from the Kimsuky state-sponsored actor, joins us to talk about a recent campaign that had some pretty high stakes. Kimsuky, a known APT out of North Korea, recently used a series of fake blog posts to spread malware to high-profile targets in South Korea.

Asheer discusses what information the attackers may have been after, how they infected victims, exactly, and how to detect future bad blog posts.